MongoDB
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 178 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 1, 2013 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Unbounded recursion in BSONColumn interleaved-reference causes pre-auth stack overflow
Keyfile contents are in MongoDB Server logs
Stack memory disclosure in filemd5 command
Server crash via malformed binary diff passed to $_internalApplyOplogUpdate.
GeometryCollection with strict-winding polygon causes server crash during 2dsphere index key generation
Sensitive data could be written to mongod.log
Metadata name collision on $-prefixed fields causes post-auth server crash
Using MaxKey() may crash the server
$_internalConvertBucketIndexStats may crash the mongod server when working on no timeseries input
Crafted cross-shard merge aggregation crashes MongoDB Server
Monitor MongoDB in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.